Ladies and gentlemen, DC Awards!
Good morning, DEF CON.
I say that because probably half of you just got out of bed, didn't you?
And the other half are going right back to bed once we've emptied the bottles.
Bye.
We miss you!
Thanks!
All right.
Welcome to the DEF CON Awards.
I am Russ.
This is Jericho.
And over here we have the invisible Dark Tangent.
He was here year one and has been missing in action since.
So if you see him in the hallways, tell him we're here.
So let's talk a little bit about what the awards are, how it works.
So first slide is why.
Why did we do the DEF CON Awards?
We have people that subscribe.
They sit around and complain or brag about accomplishments, things like that.
We wanted to recognize those things.
But we wanted to be a little bit different.
So it's important to note that we did not vote on this.
We get up here.
We get to talk about it.
But people in the community nominated all these individuals or organizations for the
categories.
We didn't vote.
We had organizational input only.
And we do it so that you get recognition.
Okay.
So good things that you do when you kick ass and you get great recognition when you do
really shitty stuff.
And that's why we're here.
These are all public nominations.
We open this up to the entire world.
We've been getting steadily more and more nominations over the last few years that
we've done this.
We open it up via Survey Monkey.
Now we made a mistake the first year and we actually tried to do voting.
Did you try my glasses on?
Yeah.
Did it mess you up?
Yeah.
And deaf.
This should be fun.
We tried to take the votes on Survey Monkey as well.
And hackers do an amazing job of screwing with your numbers.
So we do it a little differently now.
Jericho bought a sound meter and we're going to do it here.
You can actually vote.
And if you happen to be one of the nominees and you're in the room and you win something
and you want a shot ‑‑ Or five.
Or five.
These bottles are unopened.
You win.
You can crack the seal yourself if you want.
I figure nobody is going to trust an already opened bottle of alcohol at DEF CON, right?
Just forget the whole tamper evidence contest.
Yeah, exactly.
There is a board review.
So it goes out.
Everyone nominates everyone they want.
Jericho and I will sit down with some other people and decide which ones are most relevant,
which ones got the most votes, and which ones were just trolling us.
And we'll remove all the trolls and that kind of stuff and bring you the absolute
distilled best.
And the public voting is done right here with the sound meter, like I said.
Past years, we started this in 2011.
It was a brainchild that has been slow to give birth simply because people would rather
be drinking and hacking and breaking into stuff than sitting in here watching Jericho
and I talk about this.
It was originally called the DEF CON Awards, which was slightly confusing since the closing
ceremonies became the DEF CON Awards.
Okay.
At some point, it started taking three and a half hours to close this conference down.
So we renamed it to DEF CON Recognize Awards because we're trying to recognize people for
either being douchebags or being awesome.
Hi, Paul.
Last two years, this was held on a Sunday, and going to anything on Sunday after parties
on Thursday, Friday, and Saturday is probably not going to happen.
So we had about a dozen people in the room the last couple years.
So Brian and I spent a lot of our time drinking on our own.
This year, we moved it to Saturday.
Everyone's awake, right?
Not sober, but awake.
Yeah, we're all awake.
So DEF CON 19, 2011, these were our categories.
We had worst media coverage.
We had most interesting malware, best privacy technology, best open source software response
to an attacker method, best author or story that captures the hacker mindset, and then
we had the security charlatan.
As you know, Jericho may not know.
If you don't know, it's sad.
But Jericho does a blog and he does a lot of research and write-ups on potential charlatans
in the security community.
And he's actually gotten a very big response.
So we get a lot of input from other people around the industry, around the world that
point people out that are doing a great job of trying to be something that they're not.
And so that was really one of the main premises.
The awards was trying to get that information out so everyone would know who they could
trust.
And these were the winners.
So we had Kingpin, the story by Kevin Paulson that won the best author and story.
And then we had Gregory Evans, if any of you remember him from a couple of years ago
because he's still around, for security charlatan of the year.
Now oddly, every year we've done this, nobody that has won a you're a piece of shit award
has come up and collected their award.
So what we've done with those is we've done a lot of research.
What was in the past is just Jericho has taken those out and auctioned them off and collected
the money and given it to EFF, right?
I think that was right?
Or HFC, I forget.
Yeah.
So hackers for charity or EFF.
So if a douchebag wins it, we still take the award out and auction it off and give the
money to somebody that needs it.
And that was the first year where we actually had trophies.
Yeah, we actually had trophies that year.
This year you're getting inebriated.
Yeah.
Next year we'll have trophies again, I promise.
All right.
DEF CON 20, last year, our categories.
Worst media person or outlet.
This was for print.
We separated out the media that year and it was a mess.
So we had worst media person or outlet for broadcast where we had no nominations at all.
You all love Fox News, apparently.
I got two asks from that.
Everyone else is like, what's a television?
Best privacy enhancing technology.
Tor won.
Tor won, of course.
Your best sec or hacked Twitter feed, your non-news, still very popular.
We renamed the next award.
This was ‑‑ no offense was intended by this originally.
This was more of a European thing where we were calling somebody a ding dong.
But we've renamed this award this year to the nit twit.
We have a Captain Obvious award for last year that General Alexander won and oddly
here we are a year later and it's been proven.
We have the security charlatan of the year for last year was Ankit Fadia.
So I'm going to hand it off to Jericho to do what he does best and I'm going to interrupt
and make fun of him and heckle him along with you as we go through these categories.
So this is interactive.
Please be involved.
And if you are in the room and you do want something and you either want to wash away
the pain or share in the victory, please come up and have a shot or two.
Cool.
Thanks.
He says interactive.
Feel free to heckle him.
So real quick, the categories.
Best media coverage.
This time we went back to any media.
Best privacy enhancing tech since DEF CON 20.
Notice that on a lot of these categories.
We're not looking for the best in the world ever and some of the nominations we had to
rule out because they were a lot older than some of you in the room.
Worst privacy enhancing tech.
Best security or hacker feed.
Now the nit twit award.
Best DEF CON group project.
That was approved and that was an interesting ‑‑ we'll get to that anyway, sorry.
Worst or most meaningless security buzz word.
I'm sure we all know some of those.
Biggest law enforcement blunder since DEF CON 20 once again.
And the security charlatan of the year.
So we'll start out with best media coverage.
This is the only one where we really get to have some good visuals.
There were quite a few nominations and by the way, the slides for this will be up on
attrition.org.
Next week and it has the full list of nominations down in the notes below that you can't see
on the screen.
So you can look at our work and see which ones we decided to pick out of the list and
put up and all that and call us out for it if you want, I don't care.
So the nominees are Brian Krebs, Glenn Greenwald, the register, security week, RT.com, and Kevin
Polson.
And actually it's the worst media coverage that we get the good visuals, not this one.
So are any of these names new to anyone?
No.
Thank you.
Okay.
So based on that, let's see if I can make this damn thing work.
Testing.
That's probably good.
So one at a time.
Based on their work in the past year or so, which of these people do you think deserve
the award?
Brian Krebs.
Thank you.
Thank you.
Thank you.
Thank you.
Oh, yeah.
You writing this down?
BRYANT EPSTEINMANN Yeah.
I'll make sure you can see it.
83.2.
That was pretty loud.
Okay.
How about Glenn Greenwald from the Guardian.co.UK?
He can see.
That's cool.
cool. What? What? The reg. It registered the same as me. The one thing I will give the
reg, though, they usually have some fun titles for all their articles. Even if the articles
are kind of limp, the titles are usually good. What? Yeah, masters of the unverified
single source news story. Okay. So how about security week? Apparently
I was a little less loud on that one. They didn't even register as much as the last one.
RT.com specifically for their Snowden coverage. And then last we have some guy named Kevin
Polson. I think he's been in the scene for a year or two. Yeah, he probably did some
time. I don't know. His work at Wired. And this one
was actually submitted by the guy who told you we didn't vote. Anyway. Yeah. Someone
has got a drink. So anyway, Kevin Polson. Weasel, you don't clap very loud.
He wasn't last. Okay. So based on that.
RT.com. Yay.
Is there anyone here from RT.com?
He runs up with a camera.
Come on.
I've got to assume you're with RT.com now.
You have to take a shot.
For the next five minutes you're with RT.com if you'd like a shot.
And you can take a picture if you take a shot.
Now, while he's figuring out the tamper evidence seal over there, we'll go to the worst media
coverage of hackers, and this is the one where we have some fun visuals.
So the nominees are from ReadWrite.
Their article titled World War III.
Actually, we'll just go one at a time.
So there we go.
That's the visual we got with the article.
And if you want to take a minute to read that top paragraph.
Okay.
Every day the Pentagon is attacked three million times.
And that's kind of amusing because, weasel, was that 95 or 96 we got the article about
the Pentagon being attacked 250,000 times?
Yeah.
Because they were counting ping.
Yeah.
Okay.
So anyway, we have that good visual that, you know, World War III is right here and
we're already losing.
I said you get a shot.
Oh, yeah.
Solidarity.
I'm good at something.
Okay.
So next up we have Marie Claire when geeks attack.
So look at that picture.
Those are apparently brogrammers.
Can anyone tell the difference between that and a DEF CON crowd?
Yeah, there's females in that picture and there's no females at DEF CON.
Good call.
You want to take a sip so that you're more coherent?
Next we have Meet the Press.
This douche bag, David Gregory, basically says, Mr. Greenwald, shouldn't we be charging
you with a crime for, you know, doing your job as a journalist and covering a story?
And he actually grills them.
It was pretty embarrassing for Gregory.
Man, I failed.
I didn't even put the YouTube link down in there.
You'll have to Google it or something.
I don't know.
Next the Minici?
Eh?
Minici?
Okay.
Yeah.
NPA.
So there's a little back story to this one.
Yeah.
They basically write an article and they didn't quite use the best wording so everyone thought
that what they said was the law.
And that the law was going to do something.
And it ends up they didn't.
And by the time they issued the retraction or apology, everyone was in a panic.
So, yeah, they really screwed the pooch on that one.
Next we have Info World, Confessions of a Cyber Warrior.
This is a very recent one.
I don't know.
Yeah.
Who actually read this article?
Who read this article and kept a straight face?
Liar.
Okay.
Yeah.
So if you want a good, good laugh, grab a bottle, read this article.
It's hilarious.
What?
Okay.
So we're going to vote now.
This time make some noise, bitches.
Okay.
Read right.
World War III.
Woo!
Holy shit.
Got triple digits on that one.
Yeah.
Marie Claire, when geeks attack.
Good effort, sir.
No.
It was close.
Good effort.
Good effort.
Meet the Press, David Gregory.
These guys are still louder.
Yeah.
So this is revealing.
Stack the vote.
Stack the vote.
Come on.
If any of you are really wanting to vote, yeah, come up closer and you have more influence.
That's how this works.
And the only reason that someone's not stacking the vote is because he actually forgot his
air horn.
.
We got the air horn.
Yeah.
We got it.
We got the air horn.
Cite your source.
The Mainichi in the correction.
Yeah that was limp.
Info world, confessions of a cyber warrior.
Yeah, who was that making the noise back there?
Come on, one of you raise your hands.
Who made all that noise back there?
The harbor seal back there?
Okay.
So the winner, thanks to these two fine gentlemen, is ReadWrite and World War III, which we are
losing.
It was in the print.
It's fact.
Yeah.
So best privacy enhancing technology since DEF CON 20.
We actually had ‑‑ I think we had more than that.
We had a lot of nominations, but only four of them count.
So Ghostery.
One user.
You better be loud.
Disconnect two.
Any users?
Does anyone here care about privacy?
No?
Okay.
Yeah.
Twitter two factor authentication.
Anyone actually use that on Twitter?
Two people and we wouldn't want to hack your accounts anyway?
Come on.
Dude, we doubled it.
We did double it from the previous categories.
It did.
You went from one to two.
Yeah.
Okay.
And who uses onion pie?
This is completely random now, isn't it?
The NSA thinks all of you.
Just as a note, I want to point out that the reason the other products did not make
it on the list are that they are not recent or new since DEF CON 20.
And that's really the key.
We need things that are new over the last 12, 14 months is kind of what we're ‑‑
Use the microphone.
It's not on.
It is now.
What he said.
Thank you.
Anyway, since DEF CON 20, thank you, esteemed hat.
Okay.
So, Ghostery.
Boo!
Boo!
This is going to be fun because none of you people know what any of this shit does.
And they don't.
They don't care.
See, next time you need to nominate whatever crappy tool you're using for privacy,
you know, paper and pencil or something.
Microsoft Word.
Yeah.
I hear that zip encryption is pretty strong.
I love Jason Scott.
Yeah.
Disconnect 2.
Disconnect 2.
Yeah!
Yeah!
Woo!
Oh, yeah.
It's going to be ‑‑ Disconnect 2 is some hot shit based on that vote.
Twitter two‑factor authentication.
Come on!
Two of you.
Oh, none of that little U.K. golf clap.
They had the most supporters in the room and is not winning.
You guys limbered up?
You ready?
Yeah, they're getting ready.
Okay.
Onion pie.
That was a noble effort, wild charging bear.
That's officially the highest number we've ever seen in three years.
Now, which of you critics was all bitching and whining like a whore about the unscientific
process we used?
I heard it from right here.
It's very scientific.
It's just not statistically relevant.
Yeah.
Yeah.
Neither is the rest of our industry.
And we have alcohol.
So anyway, we give you people many ways to influence this.
We use survey monkey.
We let you come here and make noise, run up, fillate the damn thing if you want.
So if you want someone to win, next year you have some good guidance.
Wazari air horn.
Okay.
So the winner on that one.
That one was the onion pie because of the esteemed gentleman down here.
Since you are obviously users, I think you need to come up and partake.
Designated drinker, two shots.
Good man.
Worst privacy enhancing technology since DEF CON 20.
Oh, God.
Newly disclosed.
Newly disclosed.
It may be old, but it's got a new name.
Yeah.
It's got a fancy new PowerPoint, I hear.
So the first one is Prism.
If anyone has ever heard of Prism.
Yeah.
Okay.
Yeah.
Good stuff.
Cipher cloud.
And these are the reasons we were given.
I've never heard of this tool until the nomination.
Bogus security claims abusing DMCA as a defense.
Woo!
That's interesting.
I'll have to look into that one.
Gmail.
No reason given.
I thought that was Prism.
Prism Lite.
And last one is Wi-Fi sugar.
Proof is in the website, which I haven't read either.
Anyone use Wi-Fi sugar?
Any Wi-Fi sugar developers?
Get a better name.
Thank you.
No.
Wi-Fi sugar.
Give me some Wi-Fi sugar.
I can see a bad SNL skit off that.
Okay.
So.
Can you move to the other side of the stage?
So they have to at least read it.
Prism?
Go for Prism.
Nope.
Nope.
Rules say I have to have it.
Nope.
Nope.
Woo!
Woo!
Ow!
That was ten less than you two actually making noise on your own.
Sirs, the fail panel was a few hours ago.
Oh.
Funny.
Yeah.
I got it.
Yeah.
Cipher cloud.
Shh.
Shh.
If I can't be loud, I'll make the other fuckers be quiet.
It doesn't work.
It doesn't go backwards, people.
Okay.
Gmail.
I actually think that was the most popular, and it was actually quite nice.
That was pretty swell, and I think we're going to just discount these fuckers down here in
favor of that.
Used a microphone.
Okay.
So if you want to keep Prism.
If you had brought your own microphone, that would be a different story.
I like your style.
What did you end up on then?
89.5?
Yeah.
About ten less.
Yeah.
And last, Wi‑Fi sugar.
Remember, it doesn't go backwards.
Hey, somebody ‑‑ that's the lowest number we've had today.
All right.
So we have two.
We have two.
We have Prism.
They'll be quiet.
They'll be quiet.
And we have Gmail.
And we had more energy on Gmail.
So if you want to vote for Prism, use your voice right now.
That's nice.
All right.
Gmail.
Go.
I think you went backwards.
Yeah.
You didn't even meet your previous one.
90.3.
Okay.
So it's Prism.
Is General Alexander in the room to take this award?
Shot, General.
We didn't have to ask that question earlier.
They knew.
Yeah.
Are there any feds to spot?
No.
So I heard that after his Black Hat talk went swimmingly where people were calling out
bullshit to interrupt him, that he be‑lined straight for McCarran.
Yeah.
That was actually planned before his talk ever.
No.
The eggs got confiscated before they made it to the room.
Yeah.
Yes, that happened.
Brian sounds pissed.
Jericho is like, I paid a lot of money for those eggs.
Let the eggs through.
Come on.
Yeah.
Okay.
So now we're getting into the fun stuff.
You didn't tell them who won.
Prism.
Don't worry.
They know they won.
Where do you think this goes?
So, best Twitter feed.
IO Error.
Make some noise right now if you follow these people.
IO Error.
Moxie.
Uranon News.
Spaceman.
Ace Rogue.
You want them to make noise on the next ‑‑
You know, it's really hard ‑‑ I just recognized him without the blue hair.
I'm sorry.
I'm sorry, dude.
I haven't seen you in forever.
So I apologize.
I'm sitting up here like, ah, who's the guy with the beard?
I was going to say, now you're sporting the post office poster beard.
Yeah.
Have you seen me?
$20,000 reward.
It's good to see you, sir.
Okay.
So this is the one time I think that I had moderator influence.
The Hacker News was nominated.
They're plagiarists.
So they're not going to win.
End of story.
And Hacker Huntress.
Okay.
Other than Spaceroad, any of you ‑‑
Are there nominees in the room?
Yeah.
Yeah.
87% of the room is anonymous, probably.
So, yeah.
Okay.
So can we mix it up a little bit?
How many of you have actually been in this community and following DEF CON for at least
ten years?
All right.
So not even half the room.
Here's the thing.
If you know Spaceroad, and you follow ‑‑
And you follow Spaceroad.
If you follow the Hacker News Network in the day, they were the ‑‑
The Hacker News Network, H&N, is not the Hacker News.
Right.
This is a little lame want to be ripped off.
Yeah.
So what I'm trying to do is draw ‑‑ there's a line there.
There was the original H&N, which was Spaceroad.
Right.
And now there is the facsimile of such, which is kind of like candy cane dipped in bird
shit.
And so ‑‑
Yeah.
Someone's going to win the arbitrary insult award.
So I just want to draw that line.
If you've been around for ten years, it's not the same H&N.
That's why.
Okay.
So now we're going to vote.
IO error.
It's better than nothing.
No, it's not.
Actually, it's not better than nothing.
That was actually, I think, a little quieter than the idle room.
Someone goes, oh, damn.
Sorry, Jacob.
No.
Moxie.
I was 78ish.
I forgot to hit a button.
User incompetence.
My fault.
Anyway.
Your ANON news.
Hey, don't look at me like that.
Don't laugh, it's women right now.
It's urine incompetence.
Urine.
Someone's ‑‑ we can have fun with this.
Oh, yeah.
Penis.
Back tick drop table.
We need an award for that.
Absolutely awesome.
Yeah, designated drinker, drink that.
He's our designated drinker for the stage, too.
Okay, and last, Hacker Huntress.
It was 85.
No one important.
Okay, fine.
Space Rog.
Yeah!
Get on!
Get on!
So by popular vote, the Hacker News went no.
No, we're going to make you come up here and drink since you won.
Yay!
Are we close?
We're close.
Are we close?
Are we close to end or did you guys get promised free shots, all of you that just came in?
Free shots.
Free shots, yeah.
Well, your only chance of getting a free shot is to come down here and make noise when you're
told to.
So real quick, seriously, Space Rogue's been doing the Hacker News for a long time.
He would actually wake up at some obscene hour, and I know because I was up from the
night before, and there's something you need to know about him that my friend Carol and
I, we would do editing for him.
Carolyn Mino?
No.
Okay, different Carol.
Carolyn Fennelly.
Yeah, yeah.
So he has his own form of English called Spaceronics, and every morning he would write these great
articles minus the, I don't want to say clever use, I want to say fisting of the English
language.
But the content was there, and that's what was important, and that's why Carol would
be up, and I would wake up early, and I would be up from the night before, and we would
actually take the time to edit his crap.
So anyway, thank you very much, Space Rogue.
You've done a great thing for the community for a long time.
So we just had the good.
Now we need the bad.
I forgot to change the title of that one.
Drink.
I know.
Oh, man.
You don't get to designate that one either.
That's purely on you.
Okay.
Okay.
Yeah, if you want the free shots, you have to first come up here and make noise when
you're told.
Come sit down.
Come help vote.
There's a celebrity on the front row, too.
Okay.
So the nit twit award, because someone forgot to change the name on this slide, we're voting
for the Twitter feed that is considered the worst.
The first nominee.
The first nominee is the jester.
Who follows the jester?
Who nominated the jester?
Just one person.
We only got IP addresses, and last I heard they're a little untrustworthy.
Yeah.
Number two, White Rabbit.
Anyone follow him?
Her.
Her.
Her.
Her.
Her.
Her.
Her.
Her.
There's a debate on the front row whether it has genitalia.
Yeah.
Third, Asher Research?
Anyone?
No?
Okay.
Gregory D. Evans.
Who won!?
I know most of you don't follow, because his account has been locked for a long time
because of me.
And last, Ada Initiative.
Hey, Val.
You in the room?
I want to talk to you about some dongle.
Look.
You know, there's a certain irony that they're on the twit twat award.
We did change that name, I swear.
That's my mistake.
It is the nit twit award.
I'll get in trouble for that.
Okay.
We have to speed this up a little bit, too.
So the jester.
Make noise if you think it's the worst Twitter feed.
Why rabbit?
He's getting louder.
You want more?
Asher our research.
I was wrong.
You can't make it go backwards.
Gregory Evans.
Why rabbit thanks you.
Everyone is still really confused about that one.
Ada initiative.
You said you couldn't rig the votes.
Alcohol will rig it.
Anything at DEF CON.
Sorry.
That was a little muscle spasm.
Nothing else.
And then the side little, sorry.
Okay.
So.
It was Ada.
Ada initiative.
Val or the other chick.
You want to come up here and we can discuss your financials that have been leaked out?
No?
Ouch.
Anyone?
Anyone?
You can have a shot, too.
Oh, yeah.
A shot.
Consensual shot.
Okay.
Fine.
We'll send you your award later.
Okay.
Bye.
I'm not going to spend time on this one.
Best project by an approved DEF CON group.
We had two nominees.
One of them had like 87 votes and the other one had one.
So honey pot that can bite.
Anyone involved in that?
Anyone?
It's free booze.
Yeah.
It's a DEF CON group something.
I don't know.
You're supposed to be here.
I want a whiskey.
Fuckers.
Take one.
You can lie.
You can lie.
We don't have whiskey, though.
Okay.
Yeah.
So anyway.
That one was an obvious rigged vote, but, hey, we'll give it to them because they're
spirited.
Congrats.
Worst security buzz word since DEF CON 20.
I mean, it really took a hold of the news.
Remember, some of these were nominated.
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Drink!
Okay, so we're going to go down these real quick, APT, buzz words, plural, shut up.
Security community, duh.
Cloud.
Yeah, that one we probably shouldn't have included.
Okay.
I'll give you that.
CEH, that's Certified Ethical Hacker.
That's a respectable number off laughs.
I'll make sure I tell Jay Bavisi, head of the EC Council about that one.
Tell him we have a real course.
Yeah.
No, I'm not.
I'm not really missing it at all.
Ada initiative.
Woo!
Oh!
I like that.
Damn, you're loud.
Okay.
Anonymous.
That's another one we probably should have dropped since ‑‑ yeah.
Okay.
We'll skip that one.
Cyber.
The irony, of course, is that all of you should be drinking for that.
Shut up.
China.
China.
China.
That's all you got?
Oh, yeah.
Nice.
Okay.
And last, Snowden.
.
Huh.
Yeah.
All right.
So the award is cyber, and we're all losers for that one.
Everyone drink.
We've got five minutes, so we've got to really do this quick.
Biggest law enforcement slash legal system blunder since DEF CON 20.
We're not going to take votes.
We're going to call all of these the winner on that one.
And how law enforcement fucked up in big ways.
So real quick, unofficial awards, best con award show, the ponies.
If you missed them at the black hat, catch the video.
They're funny.
We're not.
Most cleverest and funniest security Twitter feed, security humor.
Really, really clever, follow.
Best book on freaking this year, exploding the phone.
If any of you are interested in telephone and freaking history, get the book.
Internet hacker security historian of the year, Jason Scott.
Yeah!
Yeah!
Yeah!
By the way, if any of you use the Internet, go donate to archive.org.
If you have any old hacker stuff sitting in your closet, old paperwork, whatever, work
with Jason to make sure it gets into the right hands.
While many people ship stuff to him, he also makes sure it goes to the right places, certain
museums or whatever initiatives that are dedicated to collecting that information.
Awesome work.
Yes.
And most prolific Tweeter that was most desperate for an award.
So last.
How much time do we have?
Two minutes?
Three?
Hey, goon.
You have 15.
Sorry.
I'm reading good.
You have good slides.
You have three minutes.
Russ said 15.
I like his answer.
I can roll it a little bit, probably.
Who's going to pull somebody with free booze off the stage?
I'll fight them.
Come at me, bro.
Okay.
Security charlatan award nominations.
And once again, we're going to have a lot of fun.
And I did not nominate any of these, but I did note which ones I have worked with my
team to publish information on.
So first one is Ankit Fadia.
Anyone know of him?
Yeah?
Okay.
What did he do this year?
Oh, no.
What did he do this year?
He gave the same presentation he's been giving for the past 13 years where he still uses
back orifice as his example for a remote access Trojan.
Okay.
So on that note, is anybody, aside from Spacerogue, here that was involved in any of the back
orifice stuff?
Because I'd like to give them a shot, too.
Do we have Dildog in here or Death Veggie?
Any of you loft bitches, get up here.
Okay.
Rahul Tyagi.
Anyone heard of him?
He's kind of like a Fadia lite.
Kim.com Schmitz.
So yeah.
Most of you have heard the news about him for the last few years and his antics and
mega this and mega fuckwad and all that.
Right.
So he's got a long history before that of fraud and all kinds of other interesting stuff.
Make sure you read up on that.
I do not know the story behind this one, but it got votes.
Fortinet Security.
He just wants a shot.
Yeah.
Afterwards, if you know why they should be nominated, please let me know.
And same with this one.
Chris Russo.
Anyone?
Anyone?
Chris?
Chris, are you in the room?
Can I buy you a shot and get your secrets?
Bottle?
Okay.
So based on that, and I know it's a little blind, because if you did your homework, you
would have read about all these people in advance.
So Ankit Fadia.
This thing is complicated.
Yeah.
It is.
Yeah.
There's two buttons.
By that I mean it's not easy to reset.
Fuck you.
Rahul Tyagi.
Yeah.
I'll make sure to mail him and say he sucked at this award, too.
Kim.com Schmitz.
Yeah!
Yeah!
Yeah!
Yeah!
Yeah!
Ola!
I don't care if he wins, just get another shot and designate his shot.
Fortnite security.
Yeah.
Listen, people.
If you're gonna nominate someone, give us some details of some dirty dirt I can spill
on stage.
Or at least show up so you can vote for them.
Yeah.
OK.
Ehoo.
And last, Chris Russo.
I wish we had a cricket soundtrack.
It would be too loud.
Okay.
So we'll really test your interest in the community just for fun.
Also nominated but not on this list, Fernando Gaunt.
That was intentional.
I was just curious.
Thank you.
Thank you.
Okay.
So Kim.com Schmitz is the winner of the security charlatan of the award this year.
So everyone, take this PowerPoint presentation.
Highlight his name.
Upload it to his mega service.
Next year we'll have more nominations.
We'll have different categories maybe.
We will actually have trophies and more booze and hopefully we'll have more people.
All of you that came in for the free shots, DEF CON parties is ready to give them to you
later tonight.
Thank you.
Thanks, guys.
